FreeBSD e lokisa bofokoli bo ka sebelisoang hole ho ipfw

Ka filthara ea pakete ea ipfw felisitsoe mefokolo e 'meli ho khoutu ea khetho ea TCP, e bakoang ke netefatso e fosahetseng ea data lipaketeng tsa marang-rang tse sebetsitsoeng. Kotsi ea pele (CVE-2019-5614) ha o sebetsana le lipakete tsa TCP ka tsela e itseng e ka lebisa ho phihlello ea mohopolo kantle ho buf buffer e fanoeng, mme ea bobeli (CVE-2019-15874) e ka lebisa phihlellong ea libaka tsa memori tse seng li lokolotsoe. tshebediso-kamora-mahala).

Tlhahlobo ea ho nepahala ha lintlha tse khethiloeng bakeng sa tšebeliso e ka tsosang ts'ebetso ea khoutu ea bahlaseli ha e so etsoe, empa ho ka etsahala hore bofokoli bo se ke ba fella feela ho bakang ho senyeha ha kernel. Mathata a ile a lokisoa ho lintlafatso tsa FreeBSD 11.3-RELEASE-p8 le 12.1-RELEASE-p4 (litokiso li entsoe makaleng a tsitsitseng morao koana ka Tšitoe selemong se fetileng, empa taba ea hore litokiso tsena li amana le ho felisa ho ba kotsing e ile ea tsejoa hona joale feela) .

Source: opennet.ru

Eketsa ka tlhaloso